Revision Date: | 2022-09-02 | Version: | 1 |
Title: | CVE-2021-27928 |
Description: |
A remote code execution issue was discovered in MariaDB 10.2 before 10.2.37, 10.3 before 10.3.28, 10.4 before 10.4.18, and 10.5 before 10.5.9; Percona Server through 2021-03-03; and the wsrep patch through 2021-03-03 for MySQL. An untrusted search path leads to eval injection, in which a database SUPER user can execute OS commands after modifying wsrep_provider and wsrep_notify_cmd. NOTE: this does not affect an Oracle product.
|
Family: | unix | Class: | vulnerability |
Status: | | Reference(s): | Mitre CVE-2021-27928 SUSE CVE-2021-27928 SUSE-SU-2021:2605-1 SUSE-SU-2021:2616-1 SUSE-SU-2021:2617-1 SUSE-SU-2021:2634-1 openSUSE-SU-2021:2605-1 openSUSE-SU-2021:2616-1 openSUSE-SU-2021:2617-1
|
Platform(s): | openSUSE Leap 15.3 openSUSE Leap 15.4 openSUSE Tumbleweed SUSE CaaS Platform 4.0 SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS SUSE Linux Enterprise High Performance Computing 15 SP2 SUSE Linux Enterprise High Performance Computing 15 SP3 SUSE Linux Enterprise High Performance Computing 15 SP4 SUSE Linux Enterprise High Performance Computing 15-ESPOS SUSE Linux Enterprise High Performance Computing 15-LTSS SUSE Linux Enterprise Module for Server Applications 15 SP2 SUSE Linux Enterprise Module for Server Applications 15 SP3 SUSE Linux Enterprise Module for Server Applications 15 SP4 SUSE Linux Enterprise Server 12 SP4-ESPOS SUSE Linux Enterprise Server 12 SP4-LTSS SUSE Linux Enterprise Server 12 SP5 SUSE Linux Enterprise Server 15 SP1-BCL SUSE Linux Enterprise Server 15 SP1-LTSS SUSE Linux Enterprise Server 15 SP2 SUSE Linux Enterprise Server 15 SP3 SUSE Linux Enterprise Server 15 SP4 SUSE Linux Enterprise Server 15-LTSS SUSE Linux Enterprise Server for SAP Applications 12 SP4 SUSE Linux Enterprise Server for SAP Applications 12 SP5 SUSE Linux Enterprise Server for SAP Applications 15 SUSE Linux Enterprise Server for SAP Applications 15 SP1 SUSE Linux Enterprise Server for SAP Applications 15 SP2 SUSE Linux Enterprise Server for SAP Applications 15 SP3 SUSE Linux Enterprise Server for SAP Applications 15 SP4 SUSE Linux Enterprise Storage 7 SUSE Linux Enterprise Storage 7.1 SUSE Manager Proxy 4.0 SUSE Manager Proxy 4.1 SUSE Manager Proxy 4.2 SUSE Manager Proxy 4.3 SUSE Manager Retail Branch Server 4.0 SUSE Manager Retail Branch Server 4.1 SUSE Manager Retail Branch Server 4.2 SUSE Manager Retail Branch Server 4.3 SUSE Manager Server 4.0 SUSE Manager Server 4.1 SUSE Manager Server 4.2 SUSE Manager Server 4.3 SUSE OpenStack Cloud 8 SUSE OpenStack Cloud 9 SUSE OpenStack Cloud Crowbar 8 SUSE OpenStack Cloud Crowbar 9
| Product(s): | |
Definition Synopsis |
openSUSE Leap 15.3 is installed AND Package Information
libmariadbd-devel-10.5.11-3.3.1 is installed
AND libmariadbd-devel is signed with openSUSE key
OR
libmariadbd19-10.5.11-3.3.1 is installed
AND libmariadbd19 is signed with openSUSE key
OR
libmysqld-devel-10.2.39-3.40.1 is installed
AND libmysqld-devel is signed with openSUSE key
OR
libmysqld19-10.2.39-3.40.1 is installed
AND libmysqld19 is signed with openSUSE key
OR
mariadb-10.5.11-3.3.1 is installed
AND mariadb is signed with openSUSE key
OR
mariadb-bench-10.5.11-3.3.1 is installed
AND mariadb-bench is signed with openSUSE key
OR
mariadb-client-10.5.11-3.3.1 is installed
AND mariadb-client is signed with openSUSE key
OR
mariadb-errormessages-10.5.11-3.3.1 is installed
AND mariadb-errormessages is signed with openSUSE key
OR
mariadb-galera-10.4.20-3.9.1 is installed
AND mariadb-galera is signed with openSUSE key
OR
mariadb-rpm-macros-10.5.11-3.3.1 is installed
AND mariadb-rpm-macros is signed with openSUSE key
OR
mariadb-test-10.5.11-3.3.1 is installed
AND mariadb-test is signed with openSUSE key
OR
mariadb-tools-10.5.11-3.3.1 is installed
AND mariadb-tools is signed with openSUSE key
|
Definition Synopsis |
openSUSE Tumbleweed is installed
AND Package Information
libmariadbd-devel-10.6.5-3.1 is installed
OR libmariadbd19-10.6.5-3.1 is installed
OR mariadb-10.6.5-3.1 is installed
OR mariadb-bench-10.6.5-3.1 is installed
OR mariadb-client-10.6.5-3.1 is installed
OR mariadb-errormessages-10.6.5-3.1 is installed
OR mariadb-galera-10.6.5-3.1 is installed
OR mariadb-rpm-macros-10.6.5-3.1 is installed
OR mariadb-test-10.6.5-3.1 is installed
OR mariadb-tools-10.6.5-3.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Server Applications 15 SP2 is installed
AND Package Information
libmariadbd-devel-10.4.20-3.9.1 is installed
OR libmariadbd19-10.4.20-3.9.1 is installed
OR mariadb-10.4.20-3.9.1 is installed
OR mariadb-client-10.4.20-3.9.1 is installed
OR mariadb-errormessages-10.4.20-3.9.1 is installed
OR mariadb-tools-10.4.20-3.9.1 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Module for Server Applications 15 SP2 is installed
AND
libmariadbd-devel-10.4.20-3.9.1 is installed
OR libmariadbd19-10.4.20-3.9.1 is installed
OR mariadb-10.4.20-3.9.1 is installed
OR mariadb-client-10.4.20-3.9.1 is installed
OR mariadb-errormessages-10.4.20-3.9.1 is installed
OR mariadb-tools-10.4.20-3.9.1 is installed
OR Package Information
SUSE Linux Enterprise Module for Server Applications 15 SP3 is installed
AND
libmariadbd-devel-10.5.11-3.3.1 is installed
OR libmariadbd19-10.5.11-3.3.1 is installed
OR mariadb-10.5.11-3.3.1 is installed
OR mariadb-client-10.5.11-3.3.1 is installed
OR mariadb-errormessages-10.5.11-3.3.1 is installed
OR mariadb-tools-10.5.11-3.3.1 is installed
OR Package Information
SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS is installed
OR SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS is installed
OR SUSE Linux Enterprise High Performance Computing 15-ESPOS is installed
OR SUSE Linux Enterprise High Performance Computing 15-LTSS is installed
AND
libmysqld-devel-10.2.39-3.40.1 is installed
OR libmysqld19-10.2.39-3.40.1 is installed
OR mariadb-10.2.39-3.40.1 is installed
OR mariadb-client-10.2.39-3.40.1 is installed
OR mariadb-errormessages-10.2.39-3.40.1 is installed
OR mariadb-tools-10.2.39-3.40.1 is installed
OR Package Information
SUSE Linux Enterprise Server 15 SP1-LTSS is installed
OR SUSE Linux Enterprise Server 15-LTSS is installed
AND
libmysqld-devel-10.2.39-3.40.1 is installed
OR libmysqld19-10.2.39-3.40.1 is installed
OR mariadb-10.2.39-3.40.1 is installed
OR mariadb-client-10.2.39-3.40.1 is installed
OR mariadb-errormessages-10.2.39-3.40.1 is installed
OR mariadb-tools-10.2.39-3.40.1 is installed
OR Package Information
SUSE Linux Enterprise Server 15 SP1-BCL is installed
AND
libmysqld-devel-10.2.39-3.40.1 is installed
OR libmysqld19-10.2.39-3.40.1 is installed
OR mariadb-10.2.39-3.40.1 is installed
OR mariadb-client-10.2.39-3.40.1 is installed
OR mariadb-errormessages-10.2.39-3.40.1 is installed
OR mariadb-tools-10.2.39-3.40.1 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 15 is installed
OR SUSE Linux Enterprise Server for SAP Applications 15 SP1 is installed
AND
libmysqld-devel-10.2.39-3.40.1 is installed
OR libmysqld19-10.2.39-3.40.1 is installed
OR mariadb-10.2.39-3.40.1 is installed
OR mariadb-client-10.2.39-3.40.1 is installed
OR mariadb-errormessages-10.2.39-3.40.1 is installed
OR mariadb-tools-10.2.39-3.40.1 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Module for Server Applications 15 SP2 is installed
AND
libmariadbd-devel-10.4.20-3.9.1 is installed
OR libmariadbd19-10.4.20-3.9.1 is installed
OR mariadb-10.4.20-3.9.1 is installed
OR mariadb-client-10.4.20-3.9.1 is installed
OR mariadb-errormessages-10.4.20-3.9.1 is installed
OR mariadb-tools-10.4.20-3.9.1 is installed
OR Package Information
SUSE Linux Enterprise Module for Server Applications 15 SP3 is installed
AND
libmariadbd-devel-10.5.11-3.3.1 is installed
OR libmariadbd19-10.5.11-3.3.1 is installed
OR mariadb-10.5.11-3.3.1 is installed
OR mariadb-client-10.5.11-3.3.1 is installed
OR mariadb-errormessages-10.5.11-3.3.1 is installed
OR mariadb-tools-10.5.11-3.3.1 is installed
OR Package Information
SUSE Linux Enterprise Server 15 SP1-LTSS is installed
OR SUSE Linux Enterprise Server 15-LTSS is installed
AND
libmysqld-devel-10.2.39-3.40.1 is installed
OR libmysqld19-10.2.39-3.40.1 is installed
OR mariadb-10.2.39-3.40.1 is installed
OR mariadb-client-10.2.39-3.40.1 is installed
OR mariadb-errormessages-10.2.39-3.40.1 is installed
OR mariadb-tools-10.2.39-3.40.1 is installed
OR Package Information
SUSE Linux Enterprise Server 15 SP1-BCL is installed
AND
libmysqld-devel-10.2.39-3.40.1 is installed
OR libmysqld19-10.2.39-3.40.1 is installed
OR mariadb-10.2.39-3.40.1 is installed
OR mariadb-client-10.2.39-3.40.1 is installed
OR mariadb-errormessages-10.2.39-3.40.1 is installed
OR mariadb-tools-10.2.39-3.40.1 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 15 is installed
OR SUSE Linux Enterprise Server for SAP Applications 15 SP1 is installed
AND
libmysqld-devel-10.2.39-3.40.1 is installed
OR libmysqld19-10.2.39-3.40.1 is installed
OR mariadb-10.2.39-3.40.1 is installed
OR mariadb-client-10.2.39-3.40.1 is installed
OR mariadb-errormessages-10.2.39-3.40.1 is installed
OR mariadb-tools-10.2.39-3.40.1 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise High Performance Computing 15 SP3 is installed
OR SUSE Linux Enterprise Module for Server Applications 15 SP3 is installed
OR SUSE Linux Enterprise Server 15 SP3 is installed
OR SUSE Linux Enterprise Server for SAP Applications 15 SP3 is installed
OR SUSE Linux Enterprise Storage 7.1 is installed
OR SUSE Manager Proxy 4.2 is installed
OR SUSE Manager Retail Branch Server 4.2 is installed
OR SUSE Manager Server 4.2 is installed
AND Package Information
libmariadbd-devel-10.5.11-3.3.1 is installed
OR libmariadbd19-10.5.11-3.3.1 is installed
OR mariadb-10.5.11-3.3.1 is installed
OR mariadb-client-10.5.11-3.3.1 is installed
OR mariadb-errormessages-10.5.11-3.3.1 is installed
OR mariadb-tools-10.5.11-3.3.1 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS is installed
OR SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS is installed
AND
libmysqld-devel-10.2.39-3.40.1 is installed
OR libmysqld19-10.2.39-3.40.1 is installed
OR mariadb-10.2.39-3.40.1 is installed
OR mariadb-client-10.2.39-3.40.1 is installed
OR mariadb-errormessages-10.2.39-3.40.1 is installed
OR mariadb-tools-10.2.39-3.40.1 is installed
OR Package Information
SUSE Linux Enterprise Server 15 SP1-LTSS is installed
AND
libmysqld-devel-10.2.39-3.40.1 is installed
OR libmysqld19-10.2.39-3.40.1 is installed
OR mariadb-10.2.39-3.40.1 is installed
OR mariadb-client-10.2.39-3.40.1 is installed
OR mariadb-errormessages-10.2.39-3.40.1 is installed
OR mariadb-tools-10.2.39-3.40.1 is installed
OR Package Information
SUSE CaaS Platform 4.0 is installed
OR SUSE Linux Enterprise Server 15 SP1-BCL is installed
AND
libmysqld-devel-10.2.39-3.40.1 is installed
OR libmysqld19-10.2.39-3.40.1 is installed
OR mariadb-10.2.39-3.40.1 is installed
OR mariadb-client-10.2.39-3.40.1 is installed
OR mariadb-errormessages-10.2.39-3.40.1 is installed
OR mariadb-tools-10.2.39-3.40.1 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 15 SP1 is installed
AND
libmysqld-devel-10.2.39-3.40.1 is installed
OR libmysqld19-10.2.39-3.40.1 is installed
OR mariadb-10.2.39-3.40.1 is installed
OR mariadb-client-10.2.39-3.40.1 is installed
OR mariadb-errormessages-10.2.39-3.40.1 is installed
OR mariadb-tools-10.2.39-3.40.1 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS is installed
OR SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS is installed
AND
libmysqld-devel-10.2.39-3.40.1 is installed
OR libmysqld19-10.2.39-3.40.1 is installed
OR mariadb-10.2.39-3.40.1 is installed
OR mariadb-client-10.2.39-3.40.1 is installed
OR mariadb-errormessages-10.2.39-3.40.1 is installed
OR mariadb-tools-10.2.39-3.40.1 is installed
OR Package Information
SUSE Linux Enterprise Server 15 SP1-LTSS is installed
AND
libmysqld-devel-10.2.39-3.40.1 is installed
OR libmysqld19-10.2.39-3.40.1 is installed
OR mariadb-10.2.39-3.40.1 is installed
OR mariadb-client-10.2.39-3.40.1 is installed
OR mariadb-errormessages-10.2.39-3.40.1 is installed
OR mariadb-tools-10.2.39-3.40.1 is installed
OR Package Information
SUSE Linux Enterprise Server 15 SP1-BCL is installed
OR SUSE Manager Proxy 4.0 is installed
OR SUSE Manager Retail Branch Server 4.0 is installed
AND
libmysqld-devel-10.2.39-3.40.1 is installed
OR libmysqld19-10.2.39-3.40.1 is installed
OR mariadb-10.2.39-3.40.1 is installed
OR mariadb-client-10.2.39-3.40.1 is installed
OR mariadb-errormessages-10.2.39-3.40.1 is installed
OR mariadb-tools-10.2.39-3.40.1 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 15 SP1 is installed
AND
libmysqld-devel-10.2.39-3.40.1 is installed
OR libmysqld19-10.2.39-3.40.1 is installed
OR mariadb-10.2.39-3.40.1 is installed
OR mariadb-client-10.2.39-3.40.1 is installed
OR mariadb-errormessages-10.2.39-3.40.1 is installed
OR mariadb-tools-10.2.39-3.40.1 is installed
OR Package Information
SUSE Manager Server 4.0 is installed
AND
libmysqld-devel-10.2.39-3.40.1 is installed
OR libmysqld19-10.2.39-3.40.1 is installed
OR mariadb-10.2.39-3.40.1 is installed
OR mariadb-client-10.2.39-3.40.1 is installed
OR mariadb-errormessages-10.2.39-3.40.1 is installed
OR mariadb-tools-10.2.39-3.40.1 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise High Performance Computing 15 SP2 is installed
OR SUSE Linux Enterprise Module for Server Applications 15 SP2 is installed
OR SUSE Linux Enterprise Server 15 SP2 is installed
OR SUSE Linux Enterprise Server for SAP Applications 15 SP2 is installed
OR SUSE Linux Enterprise Storage 7 is installed
OR SUSE Manager Proxy 4.1 is installed
OR SUSE Manager Retail Branch Server 4.1 is installed
OR SUSE Manager Server 4.1 is installed
AND Package Information
libmariadbd-devel-10.4.20-3.9.1 is installed
OR libmariadbd19-10.4.20-3.9.1 is installed
OR mariadb-10.4.20-3.9.1 is installed
OR mariadb-client-10.4.20-3.9.1 is installed
OR mariadb-errormessages-10.4.20-3.9.1 is installed
OR mariadb-tools-10.4.20-3.9.1 is installed
|
Definition Synopsis |
Release Information
SUSE OpenStack Cloud 8 is installed
OR SUSE OpenStack Cloud Crowbar 8 is installed
AND Package Information
libmysqlclient18 is affected
OR libmysqlclient18-32bit is affected
OR mariadb is affected
OR mariadb-client is affected
OR mariadb-errormessages is affected
OR mariadb-galera is affected
OR mariadb-tools is affected
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP4-LTSS is installed
AND
mariadb-10.2.39-3.36.1 is installed
OR mariadb-client-10.2.39-3.36.1 is installed
OR mariadb-errormessages-10.2.39-3.36.1 is installed
OR mariadb-tools-10.2.39-3.36.1 is installed
OR Package Information
SUSE OpenStack Cloud 9 is installed
OR SUSE OpenStack Cloud Crowbar 9 is installed
AND
mariadb-10.2.39-3.36.1 is installed
OR mariadb-client-10.2.39-3.36.1 is installed
OR mariadb-errormessages-10.2.39-3.36.1 is installed
OR mariadb-galera-10.2.39-3.36.1 is installed
OR mariadb-tools-10.2.39-3.36.1 is installed
OR Package Information
SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
AND
mariadb-10.2.39-3.36.1 is installed
OR mariadb-client-10.2.39-3.36.1 is installed
OR mariadb-errormessages-10.2.39-3.36.1 is installed
OR mariadb-tools-10.2.39-3.36.1 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise High Performance Computing 15 SP2 is installed
OR SUSE Linux Enterprise Module for Server Applications 15 SP2 is installed
OR SUSE Linux Enterprise Server 15 SP2 is installed
OR SUSE Linux Enterprise Server for SAP Applications 15 SP2 is installed
OR SUSE Linux Enterprise Storage 7 is installed
OR SUSE Manager Proxy 4.1 is installed
OR SUSE Manager Retail Branch Server 4.1 is installed
OR SUSE Manager Server 4.1 is installed
AND
libmariadbd-devel-10.4.20-3.9.1 is installed
OR libmariadbd19-10.4.20-3.9.1 is installed
OR mariadb-10.4.20-3.9.1 is installed
OR mariadb-client-10.4.20-3.9.1 is installed
OR mariadb-errormessages-10.4.20-3.9.1 is installed
OR mariadb-tools-10.4.20-3.9.1 is installed
OR Package Information
SUSE Linux Enterprise High Performance Computing 15 SP3 is installed
OR SUSE Linux Enterprise Module for Server Applications 15 SP3 is installed
OR SUSE Linux Enterprise Server 15 SP3 is installed
OR SUSE Linux Enterprise Server for SAP Applications 15 SP3 is installed
OR SUSE Linux Enterprise Storage 7.1 is installed
OR SUSE Manager Proxy 4.2 is installed
OR SUSE Manager Retail Branch Server 4.2 is installed
OR SUSE Manager Server 4.2 is installed
AND
libmariadbd-devel-10.5.11-3.3.1 is installed
OR libmariadbd19-10.5.11-3.3.1 is installed
OR mariadb-10.5.11-3.3.1 is installed
OR mariadb-client-10.5.11-3.3.1 is installed
OR mariadb-errormessages-10.5.11-3.3.1 is installed
OR mariadb-tools-10.5.11-3.3.1 is installed
|
Definition Synopsis |
openSUSE Leap 15.4 is installed
AND Package Information
libmariadbd19-10.6.7-150400.1.4 is installed
AND libmariadbd19 is signed with openSUSE key
OR
mariadb-10.6.7-150400.1.4 is installed
AND mariadb is signed with openSUSE key
OR
mariadb-client-10.6.7-150400.1.4 is installed
AND mariadb-client is signed with openSUSE key
OR
mariadb-errormessages-10.6.7-150400.1.4 is installed
AND mariadb-errormessages is signed with openSUSE key
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise High Performance Computing 15 SP4 is installed
OR SUSE Linux Enterprise Module for Server Applications 15 SP4 is installed
OR SUSE Linux Enterprise Server 15 SP4 is installed
OR SUSE Linux Enterprise Server for SAP Applications 15 SP4 is installed
OR SUSE Manager Proxy 4.3 is installed
OR SUSE Manager Retail Branch Server 4.3 is installed
OR SUSE Manager Server 4.3 is installed
AND Package Information
libmariadbd-devel-10.6.7-150400.1.4 is installed
OR libmariadbd19-10.6.7-150400.1.4 is installed
OR mariadb-10.6.7-150400.1.4 is installed
OR mariadb-client-10.6.7-150400.1.4 is installed
OR mariadb-errormessages-10.6.7-150400.1.4 is installed
OR mariadb-tools-10.6.7-150400.1.4 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP5 is installed
OR SUSE Linux Enterprise Server for SAP Applications 12 SP5 is installed
AND Package Information
mariadb-10.2.39-3.36.1 is installed
OR mariadb-client-10.2.39-3.36.1 is installed
OR mariadb-errormessages-10.2.39-3.36.1 is installed
OR mariadb-tools-10.2.39-3.36.1 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
AND
mariadb-10.2.39-3.36.1 is installed
OR mariadb-client-10.2.39-3.36.1 is installed
OR mariadb-errormessages-10.2.39-3.36.1 is installed
OR mariadb-tools-10.2.39-3.36.1 is installed
OR Package Information
SUSE Linux Enterprise Server 12 SP4-LTSS is installed
AND
mariadb-10.2.39-3.36.1 is installed
OR mariadb-client-10.2.39-3.36.1 is installed
OR mariadb-errormessages-10.2.39-3.36.1 is installed
OR mariadb-tools-10.2.39-3.36.1 is installed
OR Package Information
SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
AND
mariadb-10.2.39-3.36.1 is installed
OR mariadb-client-10.2.39-3.36.1 is installed
OR mariadb-errormessages-10.2.39-3.36.1 is installed
OR mariadb-tools-10.2.39-3.36.1 is installed
|